CVE Vulnerability Database
Search and browse 375,847 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-48414 | HIGH | 7.7 | 0.5% | Aug 11, 2026 | Adobe Commerce is affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-privileged... |
| CVE-2026-48413 | HIGH | 8.7 | 0.6% | Aug 11, 2026 | Adobe Commerce is affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-privileged... |
| CVE-2026-48412 | LOW | 2.7 | 0.3% | Aug 11, 2026 | Adobe Commerce is affected by an Incorrect Authorization vulnerability that could result in privilege escalation. An att... |
| CVE-2026-48411 | MEDIUM | 6.5 | 0.5% | Aug 11, 2026 | Adobe Commerce is affected by an Incorrect Authorization vulnerability that could result in a Security feature bypass. A... |
| CVE-2026-48410 | HIGH | 7.8 | 0.2% | Aug 11, 2026 | Lightroom Classic is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in t... |
| CVE-2026-48409 | HIGH | 7.8 | 0.2% | Aug 11, 2026 | Lightroom Classic is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in t... |
| CVE-2026-48408 | HIGH | 7.8 | 0.2% | Aug 11, 2026 | Lightroom Classic is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in t... |
| CVE-2026-48407 | HIGH | 7.8 | 0.2% | Aug 11, 2026 | Lightroom Classic is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in t... |
| CVE-2026-48406 | HIGH | 7.8 | 0.2% | Aug 11, 2026 | Lightroom Classic is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in t... |
| CVE-2026-48405 | HIGH | 7.8 | 0.2% | Aug 11, 2026 | Lightroom Classic is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in t... |
| CVE-2026-48404 | HIGH | 7.8 | 0.2% | Aug 11, 2026 | Lightroom Classic is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in t... |
| CVE-2026-48397 | HIGH | 8.6 | 0.5% | Aug 11, 2026 | Lightroom Classic is affected by a Deserialization of Untrusted Data vulnerability that could result in arbitrary code e... |
| CVE-2026-48381 | CRITICAL | 9 | 0.5% | Aug 11, 2026 | Adobe Campaign Classic (ACC) is affected by an Improper Neutralization of Special Elements used in an SQL Command ('SQL ... |
| CVE-2026-47940 | HIGH | 7.8 | 0.2% | Aug 11, 2026 | Lightroom Classic is affected by an Integer Overflow or Wraparound vulnerability that could result in arbitrary code exe... |
| CVE-2026-47705 | CRITICAL | 9.6 | — | Aug 11, 2026 | TypeBot is a chatbot builder tool. Version 3.16.1 has a CSV injection vulnerability in the result export functionality. ... |
| CVE-2026-27302 | CRITICAL | 10 | 0.6% | Aug 11, 2026 | Adobe Campaign Classic (ACC) is affected by an Incorrect Authorization vulnerability that could result in arbitrary code... |
| CVE-2026-20917 | MEDIUM | 4 | 0.1% | Aug 11, 2026 | Exposure of sensitive information caused by incorrect data forwarding during transient execution for some Intel(R) Proce... |
| CVE-2026-20901 | MEDIUM | 4 | 0.1% | Aug 11, 2026 | Improper input validation for some Intel(R) Xeon(R) processors within firmware may allow an escalation of privilege. Sta... |
| CVE-2026-20712 | MEDIUM | 4 | 0.1% | Aug 11, 2026 | Incomplete cleanup in some UEFI firmware for some Intel(R) reference platforms within UEFI may allow an information disc... |
| CVE-2026-0465 | MEDIUM | 5.6 | 0.1% | Aug 11, 2026 | A Use‑After‑Free (UAF) vulnerability in the AMD Ryzen™ Master Utility Driver could allow a local attacker to access kern... |
| CVE-2025-54512 | HIGH | 7 | 0.1% | Aug 11, 2026 | A DLL hijacking vulnerability within the AMD Ryzen Master installation could allow a local user-privileged attacker to e... |
| CVE-2025-0046 | HIGH | 7 | 0.1% | Aug 11, 2026 | Incorrect directory permissions could allow a local user to escalate their privileges, potentially resulting in arbitrar... |
| CVE-2022-50997 | HIGH | 7.5 | — | Aug 11, 2026 | Weaver (Fanwei) E-cology 8.0 and 9.0 contains a SQL injection vulnerability in the HrmCareerApplyPerView.jsp endpoint th... |
| CVE-2016-20097 | HIGH | 7.5 | — | Aug 11, 2026 | Weaver (Fanwei) E-cology 8.0 contains a SQL injection vulnerability in the SignatureDownLoad servlet that allows unauthe... |
| CVE-2026-73089 | HIGH | 7.5 | — | Aug 11, 2026 | Browserslist is a configuration tool for sharing target browsers and Node.js versions between front-end tools. Prior to ... |
